CVE detail
CVE-2021-41379
Windows Installer Elevation of Privilege Vulnerability
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 20.8 · diversity 14.5 · KEV 25.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
7 source links · newest first
CISA Warns of 60 Exploited Vulnerabilities Affecting Cisco, Microsoft Products
newswww.securityweek.comMar 4, 2022, 11:49 AMIt’s the final Patch Tuesday of 2021 and Microsoft has delivered fixes for 67 vulnerabilities, including a spoofing vulnerability (CVE-2021-43890) actively exploited to deliver Emotet/Trickbot/Bazaloader malware family. Vulnerabilities of note in this patch batch Of the 67 CVE-numbered flaws, CVE-2021-43890 – a Windows AppX Installer spoofing vulnerability – will, understandably, be a patching priority. “CVE-2021-43890 allows an attacker to create a malicious package file and then modify it to look like a legitimate application, and … More →
newswww.helpnetsecurity.comDec 14, 2021, 8:21 PM- 29th November – Threat Intelligence ReportCheck Point Research
For the latest discoveries in cyber research for the week of 29th November, please download our Threat Intelligence Bulletin. Top Attacks and Breaches GoDaddy has announced they suffered a data breach with data of up to 1.2 million of its customers being exposed after an unauthorized person used a compromised password to gain access to […]
vendorresearch.checkpoint.comNov 29, 2021, 3:46 PM - Week in review: Windows EoP flaw still exploitable, GoDaddy breach, malicious Python packages on PyPIHelp Net Security
Here’s an overview of some of last week’s most interesting news, articles and interviews: After failed fix, researcher releases exploit for Windows EoP flaw (CVE-2021-41379) A local elevation of privilege vulnerability (CVE-2021-41379) in the Windows Installer that Microsoft supposedly fixed on November 2021 Patch Tuesday is, according to its discoverer, still exploitable. GoDaddy breach: SSL keys, sFTP, database passwords of WordPress customers exposed GoDaddy, the popular internet domain registrar and web hosting company, has suffered … More →
newswww.helpnetsecurity.comNov 28, 2021, 9:00 AM - After failed fix, researcher releases exploit for Windows EoP flaw (CVE-2021-41379)Help Net Security
A local elevation of privilege vulnerability (CVE-2021-41379) in the Windows Installer that Microsoft supposedly fixed on November 2021 Patch Tuesday is, according to its discoverer, still exploitable. What’s more, it is already being leveraged by malware developers. About the flaw and the exploit Abdelhamid Naceri, who reported the flaw through the Trend Micro Zero Day Initiative, has analyzed the patch for CVE-2021-41379 and found that the bug was “not fixed correctly.” So he created and … More →
newswww.helpnetsecurity.comNov 24, 2021, 11:28 AM - Windows Installer vulnerability becomes actively exploited zero-dayMalwarebytes Labs
Sometimes the ways in which malicious code gets in the hands of cybercriminals is frustrating for those in the industry, and…
newswww.malwarebytes.comNov 23, 2021, 5:00 PM - Expert disclosed an exploit for a new Windows zero-day local privilege elevation issueSecurity Affairs
A researcher publicly disclosed an exploit for a new Windows zero-day local privilege elevation that can allow gaining admin privileges. A security researcher has publicly disclosed an exploit for a new Windows zero-day local privilege elevation vulnerability that can be exploited by threat actors to achieve admin privileges in Windows 10, Windows 11, and Windows […]
newssecurityaffairs.comNov 23, 2021, 3:28 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2021-43226CVSS 7.8 · High
Windows Common Log File System Driver Elevation of Privilege Vulnerability
KEV listed3 mentions - CVE-2021-40449CVSS 7.8 · High
Win32k Elevation of Privilege Vulnerability
- CVE-2022-21999CVSS 7.8 · High
Windows Print Spooler Elevation of Privilege Vulnerability
- CVE-2022-21919CVSS 7.0 · High
Windows User Profile Service Elevation of Privilege Vulnerability
- CVE-2021-40444CVSS 8.8 · High
<p>Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exp…
- CVE-2021-36955CVSS 7.8 · High
Windows Common Log File System Driver Elevation of Privilege Vulnerability
KEV listed1 mention